PT-2004-1782 · Mozilla · Bugzilla

Publicado

2004-07-21

·

Atualizado

2017-07-11

·

CVE-2004-0702

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Bugzilla versions 2.17.1 through 2.17.7
Description The issue allows remote attackers to gain sensitive information because the database password is displayed in an error message when the SQL server is not running.
Recommendations For Bugzilla versions 2.17.1 through 2.17.7, consider updating to a version where this issue is resolved to prevent the exposure of sensitive database passwords.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2004-0702

Produtos afetados

Bugzilla